Malware Related > Malware Analysis

urlquery.net

<< < (5/5)

SysAdMini:
No detection for exploits of CrimePack


--- Code: ---greatyoutubevideos.info/nolock/index.php
vb6protected.com/nolock/index.php
--- End code ---

tyriel:

--- Quote from: SysAdMini on September 09, 2011, 07:00:50 am ---No detection for exploits of CrimePack


--- Code: ---greatyoutubevideos.info/nolock/index.php
vb6protected.com/nolock/index.php
--- End code ---


--- End quote ---

I'll have a closer look at those URL, not sure if they contain CrimePack tho, as one seems to use some Java code and the other seems to be dead at time of visit.

I'll update the BlackHole and Incognito signatures tonight with new patterns.


Thanks for feedback MDL! :)

tyriel:

--- Quote from: SysAdMini on September 08, 2011, 04:48:15 pm ---Let's start with reporting about missing detections.

Incognito exploit kit
example

--- Code: ---buyaion.cu.cc/showthread.php?t=82651514
--- End code ---


--- End quote ---


Anyone know what version of incognito this is?

I remember the old format from v2.0 was:


--- Code: ---/in.php?a=QQkFBwQHBAEABQQMEkcJBQcEBwYABQcHDA==

--- End code ---

Navigation

[0] Message Index

[*] Previous page

Go to full version